[
https://issues.apache.org/jira/browse/HIVE-28497?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Butao Zhang resolved HIVE-28497.
--------------------------------
Fix Version/s: 4.1.0
Resolution: Fixed
Merged to master branch!
Thanks [~kiranvelumuri] for the fix!
Thanks [~Indhumathi27] for the review!
> Address CVE due to commons-codec:commons-codec:jar:1.11
> -------------------------------------------------------
>
> Key: HIVE-28497
> URL: https://issues.apache.org/jira/browse/HIVE-28497
> Project: Hive
> Issue Type: Improvement
> Reporter: Kiran Velumuri
> Assignee: Kiran Velumuri
> Priority: Major
> Labels: pull-request-available
> Fix For: 4.1.0
>
>
> The vulnerability sonatype-2012-0050 comes from
> commons-codec:commons-codec:jar:1.11 dependency in the
> hive-standalone-metastore-server module.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)